Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State (copy)
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\df266e0c-0295-4890-8121-505ad8174745.tmp
|
JSON data
|
modified
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\000003.log
|
data
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ConnectorIcons\icon-241031103452Z-182.bmp
|
PC bitmap, Windows 3.x format, 107 x -152 x 32, cbSize 65110, bits offset 54
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages
|
SQLite 3.x database, last written using SQLite version 3040000, file counter 11, database pages 21, cookie 0x5, schema 4,
UTF-8, version-valid-for 11
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages-journal
|
SQLite Rollback Journal
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2D85F72862B55C4EADD9E66E06947F3D
|
Certificate, Version=3
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2D85F72862B55C4EADD9E66E06947F3D
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeFnt23.lst.7096
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeSysFnt23.lst (copy)
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\ACROBAT_READER_MASTER_SURFACEID
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Home_View_Surface
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Right_Sec_Surface
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_READER_LAUNCH_CARD
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Convert_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Retention
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Edit_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Home_LHP_Trial_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_More_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Intent_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Retention
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Sign_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Upsell_Cards
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\Edit_InApp_Aug2020
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\TESTING
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\SOPHIA.json
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents
|
SQLite 3.x database, last written using SQLite version 3040000, file counter 24, database pages 3, cookie 0x2, schema 4, UTF-8,
version-valid-for 24
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents-journal
|
SQLite Rollback Journal
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\MSIa72fa.LOG
|
Unicode text, UTF-16, little-endian text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\A91yv2yrf_1a5xu1s_5h4.tmp
|
PDF document, version 1.6, 0 pages
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-10-31 06-34-50-029.log
|
ASCII text, with very long lines (393)
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6.log
|
ASCII text, with very long lines (393), with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\acroNGLLog.txt
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\43326336-4dbc-4999-9043-a8da3c9818b7.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 5111142
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\43a7d69f-ae56-4039-bef3-18e5e8f56781.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1311022
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\86636fd1-f1f3-4c8e-8dce-0407954ff24b.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 33081
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\9d6f4524-dbad-4dc6-bbc4-c17307056774.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 299538
|
dropped
|
||
C:\Users\user\Downloads\3adee864-df3b-4e2a-8d1c-495079ad728f.tmp
|
PDF document, version 1.7
|
dropped
|
||
C:\Users\user\Downloads\SIGN_DOCUMENT.pdf (copy)
|
PDF document, version 1.7
|
dropped
|
||
C:\Users\user\Downloads\SIGN_DOCUMENT.pdf.crdownload
|
PDF document, version 1.7
|
dropped
|
||
C:\Users\user\Downloads\a82a4958-17c5-49d3-b847-fe09df08d8df.tmp
|
PDF document, version 1.7
|
dropped
|
||
Chrome Cache Entry: 326
|
ASCII text, with very long lines (12877), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 327
|
GIF image data, version 89a, 391 x 390
|
dropped
|
||
Chrome Cache Entry: 328
|
ASCII text, with very long lines (29648), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 329
|
MS Windows icon resource - 3 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 330
|
GIF image data, version 89a, 391 x 390
|
downloaded
|
||
Chrome Cache Entry: 331
|
Unicode text, UTF-8 text, with very long lines (7768), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 332
|
ASCII text, with very long lines (16830), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 333
|
HTML document, ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 334
|
Unicode text, UTF-8 text, with very long lines (9389), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 335
|
ASCII text, with very long lines (65200)
|
dropped
|
||
Chrome Cache Entry: 336
|
Unicode text, UTF-8 text, with very long lines (64321), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 337
|
ASCII text, with very long lines (19697), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 338
|
ASCII text, with very long lines (25700), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 339
|
ASCII text, with very long lines (29012), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 340
|
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 341
|
ASCII text, with very long lines (58624), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 342
|
ASCII text, with very long lines (16556), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 343
|
Unicode text, UTF-8 text, with very long lines (54676), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 344
|
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 345
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 346
|
ASCII text, with very long lines (62863), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 347
|
ASCII text, with very long lines (45736), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 348
|
RIFF (little-endian) data, Web/P image, VP8 encoding, 1600x788, Scaling: [none]x[none], YUV color, decoders should clamp
|
dropped
|
||
Chrome Cache Entry: 349
|
ASCII text, with very long lines (11471), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 350
|
MS Windows icon resource - 3 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 351
|
ASCII text, with very long lines (23809), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 352
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 353
|
Unicode text, UTF-8 text, with very long lines (65532), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 354
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 355
|
HTML document, ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 356
|
ASCII text, with very long lines (8998), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 357
|
Unicode text, UTF-8 text, with very long lines (29922), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 358
|
ASCII text, with very long lines (10932), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 359
|
Unicode text, UTF-8 text, with very long lines (65532), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 360
|
ASCII text, with very long lines (3912), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 361
|
ASCII text, with very long lines (13771), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 362
|
ASCII text, with very long lines (9530), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 363
|
Unicode text, UTF-8 text, with very long lines (40482), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 364
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 365
|
ASCII text, with very long lines (65200)
|
downloaded
|
||
Chrome Cache Entry: 366
|
ASCII text, with very long lines (9530), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 367
|
Unicode text, UTF-8 text, with very long lines (9389), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 368
|
ASCII text, with very long lines (21808)
|
downloaded
|
||
Chrome Cache Entry: 369
|
ASCII text, with very long lines (1527), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 370
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 371
|
ASCII text, with very long lines (11215), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 372
|
ASCII text, with very long lines (23831), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 373
|
ASCII text, with very long lines (8177), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 374
|
ASCII text, with very long lines (65536), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 375
|
ASCII text, with very long lines (23831), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 376
|
ASCII text, with very long lines (25700), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 377
|
ASCII text, with very long lines (13830), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 378
|
ASCII text, with very long lines (3912), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 379
|
Unicode text, UTF-8 text, with very long lines (40482), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 380
|
Unicode text, UTF-8 text, with very long lines (5136), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 381
|
Web Open Font Format (Version 2), TrueType, length 52328, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 382
|
Unicode text, UTF-8 text, with very long lines (6335), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 383
|
ASCII text, with very long lines (19697), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 384
|
ASCII text, with very long lines (11471), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 385
|
Unicode text, UTF-8 text, with very long lines (64626), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 386
|
PDF document, version 1.7
|
downloaded
|
||
Chrome Cache Entry: 387
|
RIFF (little-endian) data, Web/P image, VP8 encoding, 1600x788, Scaling: [none]x[none], YUV color, decoders should clamp
|
downloaded
|
||
Chrome Cache Entry: 388
|
ASCII text, with very long lines (8105), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 389
|
ASCII text, with very long lines (1527), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 390
|
ASCII text, with very long lines (16039), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 391
|
Unicode text, UTF-8 text, with very long lines (6335), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 392
|
ASCII text, with very long lines (10932), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 393
|
Unicode text, UTF-8 text, with very long lines (29922), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 394
|
Unicode text, UTF-8 text, with very long lines (64321), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 395
|
ASCII text, with very long lines (13830), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 396
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 397
|
ASCII text, with very long lines (16039), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 398
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 399
|
ASCII text, with very long lines (23809), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 400
|
Unicode text, UTF-8 text, with very long lines (54676), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 401
|
Unicode text, UTF-8 text, with very long lines (7768), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 402
|
Unicode text, UTF-8 text, with very long lines (64626), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 403
|
Web Open Font Format (Version 2), TrueType, length 54112, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 404
|
ASCII text, with very long lines (21808)
|
dropped
|
||
Chrome Cache Entry: 405
|
ASCII text, with very long lines (65326)
|
downloaded
|
||
Chrome Cache Entry: 406
|
ASCII text, with very long lines (58624), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 407
|
ASCII text, with very long lines (16830), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 408
|
ASCII text, with very long lines (16556), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 409
|
ASCII text, with very long lines (12877), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 410
|
ASCII text, with very long lines (8998), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 411
|
Web Open Font Format (Version 2), TrueType, length 54112, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 412
|
ASCII text, with very long lines (13771), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 413
|
ASCII text, with very long lines (11215), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 414
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 415
|
Unicode text, UTF-8 text, with very long lines (5136), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 416
|
ASCII text, with very long lines (62863), with no line terminators
|
downloaded
|
There are 131 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2444 --field-trial-handle=2288,i,6056047703379913885,7495553416060299887,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.transfernow.net/dl/20241030KnXGth9f"
|
||
C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
|
"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Downloads\SIGN_DOCUMENT.pdf"
|
||
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
|
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215
|
||
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
|
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService
--lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0"
--lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log"
--mojo-platform-channel-handle=2124 --field-trial-handle=1520,i,6901909689202027835,7411308309289130385,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "https://ln.run/GukLk"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2100 --field-trial-handle=2056,i,17973251943311011747,13587500518542455027,262144
/prefetch:8
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://www.transfernow.net/dl/20241030KnXGth9f
|
|||
file:///C:/Users/user/Downloads/SIGN_DOCUMENT.pdf
|
|||
https://www.transfernow.net/en/bld?utm_source=20241030KnXGth9f
|
|||
https://assets.transfernow.net/28838656/fonts/main/Main-Medium.woff2
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/1206-7c198ba304dd37a6.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/main-0a45e091dd401b91.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2512.2a89be3b76f690c9.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/9915-d445b6b615dabc35.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/107-a84bda020cc26840.js
|
172.67.72.33
|
||
https://www.transfernow.net/cdn-cgi/challenge-platform/h/b/scripts/jsd/22755d9a86c9/main.js?
|
104.26.15.166
|
||
https://www.transfernow.net/_next/data/nF_TWHEQ2uuRiAQe4KXky/en/contact/sales.json
|
104.26.15.166
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/6296.bdd97d55cfc86179.js
|
172.67.72.33
|
||
https://tnow-prod-weur.367791ca7abea81096902b345fee7b1f.r2.cloudflarestorage.com/2024-10-30/ba745c5a
|
unknown
|
||
https://assets.transfernow.net/28838656/_next/static/css/27ff081005b21f4c.css
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/6641-69f5ce7d7092796f.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/4871-084af15baef8a3e0.js
|
172.67.72.33
|
||
https://www.transfernow.net/cdn-cgi/challenge-platform/h/b/jsd/r/8db2fcdafd350b8a
|
104.26.15.166
|
||
https://a.nel.cloudflare.com/report/v4?s=GBGZSBwzS17Zq0h3qu7wuX31TSCUt6R1YSeSkYJaJjifbchamQ5EIA26qs5iKSi9JfzTlFcKI7KOA793NCVFmb4qylC9lJQ9QKNDd5DcXzlduAJ3yEBp9918w1Kjt%2Bv92YlNzb%2FIsd4%3D
|
35.190.80.1
|
||
https://assets.transfernow.net/28838656/favicon.ico
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/7299-f296e802127fb503.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/4db5f4ac-29afceabad305508.js
|
172.67.72.33
|
||
https://ln.run/favicon.ico
|
188.114.97.3
|
||
https://assets.transfernow.net/28838656/_next/static/nF_TWHEQ2uuRiAQe4KXky/_buildManifest.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2531.9d384524da52b1ec.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/css/ebf39c38a3ed9279.css
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/backgrounds/transfernow_downloader_laptop.webp
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2587.1b489a1b8547a14e.js
|
172.67.72.33
|
||
https://ln.run/GukLk
|
|||
https://assets.transfernow.net/28838656/fonts/main/Main-Semibold.woff2
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/css/1dcb9991bb3598bc.css
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/css/a3da959fe25e8987.css
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/7dcf9772-0ffcbbb74993c814.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2800-ab79674c3f06b431.js
|
172.67.72.33
|
||
https://www.transfernow.net/_next/data/nF_TWHEQ2uuRiAQe4KXky/en/support.json
|
104.26.15.166
|
||
http://jedwatson.github.io/classnames
|
unknown
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2004-8f3e81f9e5138428.js
|
172.67.72.33
|
||
http://x1.i.lencr.org/
|
unknown
|
||
https://www.transfernow.net
|
unknown
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/pages/contact/sales-21856cc0f09eae7c.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/webpack-98b309babe24be51.js
|
172.67.72.33
|
||
https://github.com/twbs/bootstrap/blob/main/LICENSE)
|
unknown
|
||
https://assets.transfernow.net/28838656/logos/tnow.svg
|
172.67.72.33
|
||
https://webgate.ec.europa.eu/odr/main/index.cfm?event=main.home.show&lng=FR.
|
unknown
|
||
https://www.transfernow.net/cdn-cgi/challenge-platform/scripts/jsd/main.js
|
104.26.15.166
|
||
https://assets.transfernow.net/28838656/_next/static/nF_TWHEQ2uuRiAQe4KXky/_ssgManifest.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/site.webmanifest
|
172.67.72.33
|
||
https://getbootstrap.com/)
|
unknown
|
||
https://assets.transfernow.net/28838656/fonts/main/Main-Regular.woff2
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/c46d6b60-157c79a59c05d14e.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2cca2479-cc0ce8f2344d8db0.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/pages/support-c2c94bd277896927.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/pages/_app-030ac5976b249389.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/pages/index-e66299a4c78993c0.js
|
172.67.72.33
|
||
https://feross.org
|
unknown
|
||
https://www.transfernow.net/dl/20241030KnXGth9f
|
104.26.15.166
|
||
https://assets.transfernow.net/28838656/_next/static/css/f1d4b05c1818c737.css
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/framework-314c182fa7e2bf37.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/pages/bld-6f003e70b5c74ac2.js
|
172.67.72.33
|
||
https://chrome.cloudflare-dns.com/dns-query
|
162.159.61.3
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2962-5be52ef283b1750e.js
|
172.67.72.33
|
||
https://www.transfernow.net/api/transfer/downloads/link?transferId=20241030KnXGth9f&preview=false&fileId=HhPGmP
|
104.26.15.166
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2920-177650bf469864c7.js
|
172.67.72.33
|
||
https://www.transfernow.net/_next/data/nF_TWHEQ2uuRiAQe4KXky/en.json
|
104.26.15.166
|
||
https://assets.transfernow.net/28838656/icons/uploader/transfer_done.gif
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/6163.44f8dcd67ccbdd12.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/4249-839df663875cbdc1.js
|
172.67.72.33
|
||
https://a.nel.cloudflare.com/report/v4?s=8M5iiIQUmu8s0FJPkg9LE%2BlF08jh4qanCbBgxZBkOOoKBex5rpkv8vnhphNXzpgfbbpk6asXMe6W5G%2BaWqvIksN30k1YbwUPOdFar8QpqjpWKu5cXtrEsP2onErPCOidlMEMBY0%3D
|
35.190.80.1
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/3747-79c7d288c286e82b.js
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/chunks/2298-99301cec2e7f310e.js
|
172.67.72.33
|
||
https://assets.transfernow.net/android-chrome-192x192.png
|
172.67.72.33
|
||
https://assets.transfernow.net/28838656/_next/static/css/83e867cf9dfc830f.css
|
172.67.72.33
|
There are 60 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
bg.microsoft.map.fastly.net
|
199.232.210.172
|
||
chrome.cloudflare-dns.com
|
162.159.61.3
|
||
a.nel.cloudflare.com
|
35.190.80.1
|
||
assets.transfernow.net
|
172.67.72.33
|
||
www.transfernow.net
|
104.26.15.166
|
||
www.google.com
|
142.250.186.100
|
||
tnow-prod-weur.367791ca7abea81096902b345fee7b1f.r2.cloudflarestorage.com
|
162.159.140.238
|
||
ln.run
|
188.114.97.3
|
||
x1.i.lencr.org
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
104.26.14.166
|
unknown
|
United States
|
||
162.159.140.238
|
tnow-prod-weur.367791ca7abea81096902b345fee7b1f.r2.cloudflarestorage.com
|
United States
|
||
192.168.2.6
|
unknown
|
unknown
|
||
162.159.61.3
|
chrome.cloudflare-dns.com
|
United States
|
||
172.67.72.33
|
assets.transfernow.net
|
United States
|
||
192.168.2.23
|
unknown
|
unknown
|
||
35.190.80.1
|
a.nel.cloudflare.com
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
188.114.97.3
|
ln.run
|
European Union
|
||
142.250.186.100
|
www.google.com
|
United States
|
||
104.26.15.166
|
www.transfernow.net
|
United States
|
||
172.217.16.196
|
unknown
|
United States
|
There are 2 hidden IPs, click here to show them.
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
aFS
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tDIText
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tFileName
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tFileSource
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sFileAncestors
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sDI
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sDate
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
uFileSize
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
uPageCount
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sAssetId
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
bisSharedFile
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
aFS
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
tDIText
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
tFileName
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
sDI
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
sDate
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
uFileSize
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
uPageCount
|
There are 8 hidden registries, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://www.transfernow.net/en/bld?utm_source=20241030KnXGth9f
|
||
https://www.transfernow.net/en/bld?utm_source=20241030KnXGth9f
|
||
file:///C:/Users/user/Downloads/SIGN_DOCUMENT.pdf
|
||
https://www.transfernow.net/en/bld?utm_source=20241030KnXGth9f
|
||
https://www.transfernow.net/en/bld?utm_source=20241030KnXGth9f
|
||
file:///C:/Users/user/Downloads/SIGN_DOCUMENT.pdf
|
||
https://ln.run/GukLk
|